Hi folks, I have reproduced the failures that caused this regression, and have a new nginx update that will fix the CVE without causing it again. It passes all the new tests I've created, and it also passes the upstream NGINX test suite.
I have uploaded it to the security team PPA here: https://launchpad.net/~ubuntu-security-proposed/+archive/ubuntu/ppa/+packages I plan on publishing the update probably on Monday. I would appreciate it if you could give it a spin in your environment before then, to confirm that this new version works as expected. Please comment here if you do. Thanks, and once again apologies for the inconvenience. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2164558 Title: nginx 1.24.0-2ubuntu7.16 regression: "no buffer space in script copy" with FastCGI/HTTP/2 To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/nginx/+bug/2164558/+subscriptions -- ubuntu-bugs mailing list [email protected] https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
